Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

Preventing race conditions in secure token exchange

Active Publication Date: 2012-06-21
ORACLE INT CORP
View PDF3 Cites 7 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Benefits of technology

[0020]One embodiment describes a method of preventing race conditions in secure token conversations. The method includes generating a message from a client application to a server application, determining, at a WS-SC client, that a first secure conversation token (SCT) exists, and using the first SCT to encrypt the message. The method further in

Problems solved by technology

Presently, many error conditions in Web Services-Secure Conversation (WS-SC) exist on the management of Secure Conversation Tokens (SCT).
Current implementations of WS-SC are unable to handle heavy traffic load, especially when handling the SCT bootstrap, SCT cancel, and SCT renew.
So, there will be some race conditions where the SCT on both sides will be out-of-sync, multiple bootstraps or renew message exchanges will happen, and some expired SCT will cause message failures.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Preventing race conditions in secure token exchange
  • Preventing race conditions in secure token exchange
  • Preventing race conditions in secure token exchange

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0028]The ensuing description provides exemplary embodiments only, and is not intended to limit the scope, applicability or configuration of the disclosure. Rather, the ensuing description of the exemplary embodiments will provide those skilled in the art with an enabling description for implementing one or more exemplary embodiments. It being understood that various changes may be made in the function and arrangement of elements without departing from the spirit and scope of the invention as set forth in the appended claims.

[0029]Specific details are given in the following description to provide a thorough understanding of the embodiments. However, it will be understood by one of ordinary skill in the art that the embodiments may be practiced without these specific details. For example, circuits, systems, networks, processes, and other elements in the invention may be shown as components in block diagram form in order not to obscure the embodiments in unnecessary detail. In other i...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The present invention relates to methods and systems for preventing race conditions in secure token conversations. The method includes generating a message from a client application to a server application, determining that a first secure conversation token (SCT) exists, and using the first SCT to encrypt the message. The method further includes sending the encrypted message to the server, receiving an indication that the first SCT has expired, and initiating an SCT renew request. The method includes storing the first SCT, receiving a second SCT in response to the SCT renew request, and storing the second SCT in addition to the first SCT. The method further includes retrieving an encrypted message, determining that the encrypted message has been encrypted using the first SCT, in response to the determination, using the first SCT to decrypt the message, and generating a response from the server to the client.

Description

RELATED APPLICATION[0001]This application is related to U.S. patent application Ser. No. ______, filed concurrently herewith, entitled PROACTIVE TOKEN RENEWAL AND MANAGEMENT IN SECURE CONVERSATIONS, which is incorporated by reverence in its entirety for any and all purposes.BACKGROUND OF THE INVENTION[0002]This invention relates generally to security. More specifically the invention relates to high-performance web services secure conversation.[0003]Presently, many error conditions in Web Services-Secure Conversation (WS-SC) exist on the management of Secure Conversation Tokens (SCT). Current implementations of WS-SC are unable to handle heavy traffic load, especially when handling the SCT bootstrap, SCT cancel, and SCT renew.[0004]Further, in WS-SC conversations between the client and the server are protected by the SCT. The SCT is a share secret that is generated by the Secure Token Service (STS) on the server side, exchanged with a WS-Trust bootstrap message, and this shared secre...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L9/32
CPCH04L9/3213H04L63/123H04L63/068
Inventor CHANG, SYMON SZU-YUANLEE, ADAMCHOW, THORICKMULLENDORE, ALAN
Owner ORACLE INT CORP
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products